Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2008-2638

Static code injection vulnerability in guestbook.php in 1Book 1.0.1 and earlier allows remote attackers to upload arbitrary PHP code via the message parameter in an HTML webform, which is written to data.php.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.03
EPSS Ranking 85.8%
CVSS Severity
CVSS v2 Score 10.0
Products affected by CVE-2008-2638


Contact Us

Shodan ® - All rights reserved